Aggregator
雷鸟创新李宏伟:Meta 造梦,而 AR 眼镜的未来可能在中国
2 months 4 weeks ago
从 Meta Orion 到雷鸟 X3,看 AR 眼镜的下一个十年。
yyladmin(SQL注入(cve-2024-9293)+任意文件上传)复现+审计
2 months 4 weeks ago
本文是对yyladmin系统两个漏洞进行的简单代码审计和复现
Blackout
2 months 4 weeks ago
cohenido
CVE-2014-7072 | Offertaviaggi Venezia map 0.1 X.509 Certificate cryptographic issues (VU#582497)
2 months 4 weeks ago
A vulnerability was found in Offertaviaggi Venezia map 0.1. It has been classified as critical. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-7072. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
RansomHub
2 months 4 weeks ago
cohenido
“噪音风暴”伪造大量互联网流量
2 months 4 weeks ago
胡金鱼
Охотник становится жертвой: как Sniper Dz обманывает фишеров
2 months 4 weeks ago
Платформа скрывает свои действия за публичными серверами.
CVE-2016-1863 | Apple iOS up to 9.3.2 Kernel memory corruption (HT206902 / EDB-40652)
2 months 4 weeks ago
A vulnerability was found in Apple iOS up to 9.3.2. It has been classified as critical. This affects an unknown part of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2016-1863. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-4171 | auraCMS Modul Forum Sederhana komentar.php id sql injection (EDB-4254 / XFDB-35814)
2 months 4 weeks ago
A vulnerability, which was classified as critical, was found in auraCMS Modul Forum Sederhana. This affects an unknown part of the file komentar.php. The manipulation of the argument id leads to sql injection.
This vulnerability is uniquely identified as CVE-2007-4171. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
以明文形式存储数亿个密码,Meta被罚1亿美元
2 months 4 weeks ago
主站 分类 漏洞 工具 极客
CVE-2007-4183 | PHP Arena paBugs 2.0 Beta 3 main.php cid sql injection (EDB-4253 / XFDB-35758)
2 months 4 weeks ago
A vulnerability classified as critical has been found in PHP Arena paBugs 2.0 Beta 3. Affected is an unknown function of the file main.php. The manipulation of the argument cid leads to sql injection.
This vulnerability is traded as CVE-2007-4183. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-4140 | LFS Live For Speed S2 Alpha_patch_0.5 memory corruption (EDB-4252 / XFDB-35729)
2 months 4 weeks ago
A vulnerability was found in LFS Live For Speed S2 Alpha_patch_0.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2007-4140. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-36929 | Linux Kernel up to 5.10.216/5.15.158/6.1.90/6.6.30/6.8.9 skb_copy_expand denial of service (Nessus ID 207884)
2 months 4 weeks ago
A vulnerability was found in Linux Kernel up to 5.10.216/5.15.158/6.1.90/6.6.30/6.8.9. It has been rated as critical. Affected by this issue is the function skb_copy_expand. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2024-36929. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-6923 | Python Software CPython up to 3.13.0rc2 Email Module deserialization (Nessus ID 207883)
2 months 4 weeks ago
A vulnerability has been found in Python Software CPython up to 3.13.0rc2 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Email Module. The manipulation leads to deserialization.
This vulnerability is known as CVE-2024-6923. The attack can only be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2023-3610 | Linux Kernel Netfilter nf_tables use after free (DLA 3512-1 / Nessus ID 207884)
2 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel. Affected is the function nf_tables of the component Netfilter. The manipulation leads to use after free.
This vulnerability is traded as CVE-2023-3610. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38602 | Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 ax25_addr_ax25dev reference count (Nessus ID 207884)
2 months 4 weeks ago
A vulnerability has been found in Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 and classified as critical. This vulnerability affects the function ax25_addr_ax25dev. The manipulation leads to improper update of reference count.
This vulnerability was named CVE-2024-38602. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38554 | Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 ax25_dev_device_down reference count (Nessus ID 207884)
2 months 4 weeks ago
A vulnerability has been found in Linux Kernel up to 6.1.92/6.6.32/6.8.11/6.9.2 and classified as critical. Affected by this vulnerability is the function ax25_dev_device_down. The manipulation leads to improper update of reference count.
This vulnerability is known as CVE-2024-38554. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41042 | Linux Kernel up to 6.9.9 netfilter nf_tables_check_loops stack-based overflow (9df785aeb7dc/cff3bd012a95 / Nessus ID 207884)
2 months 4 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.9.9. This affects the function nf_tables_check_loops of the component netfilter. The manipulation leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2024-41042. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42082 | Linux Kernel up to 5.10.220/5.15.161/6.1.96/6.6.36/6.9.7 net/core/xdp.c __xdp_reg_mem_model initialization (Nessus ID 207884)
2 months 4 weeks ago
A vulnerability was found in Linux Kernel up to 5.10.220/5.15.161/6.1.96/6.6.36/6.9.7. It has been classified as problematic. This affects the function __xdp_reg_mem_model of the file net/core/xdp.c. The manipulation leads to improper initialization.
This vulnerability is uniquely identified as CVE-2024-42082. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com